package/samba4: security bump to version 4.6.8
authorBernd Kuhls <bernd.kuhls@t-online.de>
Wed, 20 Sep 2017 18:09:43 +0000 (20:09 +0200)
committerPeter Korsgaard <peter@korsgaard.com>
Thu, 21 Sep 2017 07:24:39 +0000 (09:24 +0200)
Release notes:
https://www.samba.org/samba/history/samba-4.6.8.html

Fixes
- CVE-2017-12150 (SMB1/2/3 connections may not require signing where
  they should)
- CVE-2017-12151 (SMB3 connections don't keep encryption across DFS
  redirects)
- CVE-2017-12163 (Server memory information leak over SMB1)

Signed-off-by: Bernd Kuhls <bernd.kuhls@t-online.de>
Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
package/samba4/samba4.hash
package/samba4/samba4.mk

index 24e9ae178f654e8aba663841af7fe92c7aae3b57..19b175a58eff4ed1de45798df5cf13be5f348271 100644 (file)
@@ -1,2 +1,2 @@
 # Locally calculated
-sha256 9ef24393de08390f236cabccd6a420b5cea304e959cbf1a99ff317325db3ddfa  samba-4.6.7.tar.gz
+sha256 581deeb2543f5cedcb556cb950d0e82690d9f0cd33811d76624502ca0c32575d  samba-4.6.8.tar.gz
index fddd948228e45adf2220298151753db770add9b8..f8001bbe7f68163fa348cdc33eb10e9316ec5ef8 100644 (file)
@@ -4,7 +4,7 @@
 #
 ################################################################################
 
-SAMBA4_VERSION = 4.6.7
+SAMBA4_VERSION = 4.6.8
 SAMBA4_SITE = https://download.samba.org/pub/samba/stable
 SAMBA4_SOURCE = samba-$(SAMBA4_VERSION).tar.gz
 SAMBA4_INSTALL_STAGING = YES